翻译网站sign参数逆向
网址:aHR0cHM6Ly9mYW55aS5iYWlkdS5jb20v
JS调试
加密参数sign:
使用XHR断点
再查看方法调用栈
很容易定位到加密函数
经测试,原来就是这个b函数进行的加密,参数就是我们要翻译的词
进到函数里,下断点
就是这个函数了,直接开扣
JS代码
直接扣代码
补一个r,一个n函数即可
var r = '320305.131321201';
function n(t, e) {
for (var n = 0; n < e.length - 2; n += 3) {
var r = e.charAt(n + 2);
r = "a" <= r ? r.charCodeAt(0) - 87 : Number(r),
r = "+" === e.charAt(n + 1) ? t >>> r : t << r,
t = "+" === e.charAt(n) ? t + r & 4294967295 : t ^ r
}
return t
}
function _sss(t) {
var o, i = t.match(/[\uD800-\uDBFF][\uDC00-\uDFFF]/g);
if (null === i) {
var a = t.length;
a > 30 && (t = "".concat(t.substr(0, 10)).concat(t.substr(Math.floor(a / 2) - 5, 10)).concat(t.substr(-10, 10)))
} else {
for (var s = t.split(/[\uD800-\uDBFF][\uDC00-\uDFFF]/), c = 0, u = s.length, l = []; c < u; c++)
"" !== s[c] && l.push.apply(l, function (t) {
if (Array.isArray(t))
return e(t)
}(o = s[c].split("")) || function (t) {
if ("undefined" != typeof Symbol && null != t[Symbol.iterator] || null != t["@@iterator"])
return Array.from(t)
}(o) || function (t, n) {
if (t) {
if ("string" == typeof t)
return e(t, n);
var r = Object.prototype.toString.call(t).slice(8, -1);
return "Object" === r && t.constructor && (r = t.constructor.name),
"Map" === r || "Set" === r ? Array.from(t) : "Arguments" === r || /^(?:Ui|I)nt(?:8|16|32)(?:Clamped)?Array$/.test(r) ? e(t, n) : void 0
}
}(o) || function () {
throw new TypeError("Invalid attempt to spread non-iterable instance.\nIn order to be iterable, non-array objects must have a [Symbol.iterator]() method.")
}()),
c !== u - 1 && l.push(i[c]);
var p = l.length;
p > 30 && (t = l.slice(0, 10).join("") + l.slice(Math.floor(p / 2) - 5, Math.floor(p / 2) + 5).join("") + l.slice(-10).join(""))
}
for (var d = "".concat(String.fromCharCode(103)).concat(String.fromCharCode(116)).concat(String.fromCharCode(107)), h = (null !== r ? r : (r = window[d] || "") || "").split("."), f = Number(h[0]) || 0, m = Number(h[1]) || 0, g = [], y = 0, v = 0; v < t.length; v++) {
var _ = t.charCodeAt(v);
_ < 128 ? g[y++] = _ : (_ < 2048 ? g[y++] = _ >> 6 | 192 : (55296 == (64512 & _) && v + 1 < t.length && 56320 == (64512 & t.charCodeAt(v + 1)) ? (_ = 65536 + ((1023 & _) << 10) + (1023 & t.charCodeAt(++v)),
g[y++] = _ >> 18 | 240,
g[y++] = _ >> 12 & 63 | 128) : g[y++] = _ >> 12 | 224,
g[y++] = _ >> 6 & 63 | 128),
g[y++] = 63 & _ | 128)
}
for (var b = f, w = "".concat(String.fromCharCode(43)).concat(String.fromCharCode(45)).concat(String.fromCharCode(97)) + "".concat(String.fromCharCode(94)).concat(String.fromCharCode(43)).concat(String.fromCharCode(54)), k = "".concat(String.fromCharCode(43)).concat(String.fromCharCode(45)).concat(String.fromCharCode(51)) + "".concat(String.fromCharCode(94)).concat(String.fromCharCode(43)).concat(String.fromCharCode(98)) + "".concat(String.fromCharCode(43)).concat(String.fromCharCode(45)).concat(String.fromCharCode(102)), x = 0; x < g.length; x++)
b = n(b += g[x], w);
return b = n(b, k),
(b ^= m) < 0 && (b = 2147483648 + (2147483647 & b)),
"".concat((b %= 1e6).toString(), ".").concat(b ^ f)
}
console.log(_sss('你好'));
python调用
# -*- coding: utf-8 -*-
"""
/ $$$$$$$
| $$___ $$
| $$ \__/ | $$ | $$ $$$$$ $$$$$ / $$$$$$ | $$ $$$$$
| $$ \__ | $$$___ $$$___ $$ / $$___ $$ | $$$___ $$
\ $$$$$$$ | $$ | $$ | $$ | $$ | $$ | $$ | $$ | $$
\_____ $$ | $$ | $$ | $$ | $$ | $$ | $$ | $$ | $$
| $$ | $$ | $$ | $$ | $$ | $$ | $$ | $$ | $$
| $$ | $$ | $$ | $$ | $$ | $$ | $$ | $$ | $$ | $$
\ $$$$$$$ | $$ | $$ | $$ | $$ | $$$$$$/ | $$ | $$
\_____/ \__ \__ \__ \__ \______/ \__ \__
"""
# @author:Simon
# @wechat:python_master1120
import requests, execjs
def translate():
keyword = input('请输入要翻译的词:')
headers = {
"User-Agent": "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/107.0.0.0 Safari/537.36",
}
cookies = {
'天王盖地虎'
}
url = "宝塔镇河妖"
params = {
"from": "auto",
"to": "auto"
}
sign = execjs.compile(open('baidufanyi.js', encoding='utf-8').read()).call("_sss", keyword)
data = {
"from": "auto",
"to": "auto",
"query": keyword,
"transtype": "translang",
"simple_means_flag": "3",
"sign": sign,
"token": "0e2943a3181aea10dfb23cb4120d1895",
"domain": "common"
}
response = requests.post(url, headers=headers, cookies=cookies, params=params, data=data)
print(response.json()['trans_result']['data'][0]['dst'])
if __name__ == '__main__':
while True:
translate()
搞定收工!